It was discovered that missing input sanitising in the NTLM client of the GNU SASL library could result in memory disclosure
https://security-tracker.debian.org/tracker/DSA-6348-1
Continue reading...
https://security-tracker.debian.org/tracker/DSA-6348-1
Continue reading...

